github juice-shop/juice-shop v4.1.0

latest releases: v16.0.1, v16.0.0, v15.3.0...
6 years ago

Functional Changes

  • the notification upon server start now offers a button to clean the challenge progress cookie (requires a subsequent server restart to come into effect)
  • the Pomace Recycling screen is now called Request Recycling Box and does not contain direct references to juice any more (#352)

OWASP Summit 2017 Challenge Pack (Follow-up)

  • added the (customizable!) Retrieve Blueprint challenge (#331, Spoilers!)

Customization

  • products can now be marked as soft-deleted by specifying the deletedDate property in YYYY-MM-DD format
  • one product can now refer to a fileForRetrieveBlueprintChallenge for the Retrieve Blueprint challenge (:information_source:This is optional for 4.x but will become mandatory with 6.0)
  • the two images shown on the Request Recycling Box screen can now be customized choosing from all available (or downloaded) product images (#352)

Bugfixes

  • fixed missing discount amount in coupon confirmation message (7ec238b)

Miscellaneous

  • the key for CTFs can now be injected via environment variable CTF_KEY (#346, kudos to @achimgrimm)
  • enhanced default.yml inline documentation
  • added a unique new product to the inventory (b3c38f6)

Download OWASP Juice Shop

Don't miss a new juice-shop release

NewReleases is sending notifications on new releases.